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EXAMINER'S AMENDMENT 

An examiner's amendment to the record appears below. Should the changes 
and/or additions be unacceptable to applicant, an amendment may be filed as provided 
by 37 CFR 1.312. To ensure consideration of such an amendment, it MUST be 
submitted no later than the payment of the issue fee. 

Authorization for this examiner's amendment was given in a telephone interview 
with Michael Barre on 4/1 1/2005. 

The application has been amended as follows: 
1 -34. (canceled) 

35. (currently amended) A method, comprising: 

sending a network use digital contract from a policy administrator to a network 
element, wherein the network use digital contract comprises a term to allow encrypted 
communications from the network element to be decrypted by an entity other than 
addressees of the encrypted communications; 

sending a network monitoring digital contract from the policy administrator to 
a network monitoring element; 

wherein the network monitoring digital contract comprises a term to allow the 
network monitoring element to monitor communications from the network element, even 
if the encrypted communications are not addressed to the network monitoring element; 
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sending decrypting information from the policy administrator to the network 
monitoring element in accordance with the network monitoring digital contract and 
the network use digital contract, the decrypting information to allow the network 
monitoring element to monitor a decrypted version of an encrypted communication 
from the network element; and 

before sending the network monitoring digital contract to the network 
monitoring element, performing at least one operation from the group consisting of: 

receiving a digital certificate for the network monitoring element at the policy 
administrator; and 

receiving a digital signature for the network monitoring element at the policy 
administrator. 

36. (previously presented) A method according to claim 35, where, before the 
policy administrator sends the decrypting information to the network monitoring 
element, the policy administrator performs operations comprising: 

receiving, at the policy administrator, a request from the network monitoring 
element for the decrypting information; 

sending, from the policy administrator, a request to the network monitoring 
element for the network monitoring digital contract; 

receiving, at the policy administrator, the network monitoring digital contract from 
the network monitoring element; and 

authenticating the received network monitoring digital contract. 
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37. (previously presented) A method according to claim 35, wherein sending 
decrypting information to the network monitoring element comprises: 

sending a decryption key from the policy administrator to the network 
monitoring element, the decryption key to allow the network monitoring element to 
decrypt the encrypted communication. 

38. (previously presented) A method according to claim 35, wherein sending 
decrypting information to the network monitoring element comprises: 

the policy administrator decrypting the encrypted communication; and 
the policy administrator sending the decrypted communication to the network 
monitoring element. 

39. (previously presented) A method according to claim 35, wherein, before the 
policy administrator sends the network monitoring digital contract to the network 
monitoring element, the policy administrator performs operations comprising: 

receiving a digital certificate of the network monitoring element; 

authenticating the digital certificate of the network monitoring element; 

receiving a digital signature of the network monitoring element; 

authenticating the digital signature of the network monitoring element; 

writing contract terms in an electronic document; 
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writing the digital certificate of the network monitoring element and the digital 
signature of the network monitoring element in the electronic document; and 

writing a digital certificate of the policy administrator and a digital signature of the 
policy administrator in the electronic document. 

40. (previously presented) A method according to claim 39, wherein writing 
contract terms in an electronic document comprises: 

writing data in the electronic document to identify a time period during which the 
network monitoring element will be allowed to monitor decrypted versions of encrypted 
communications from the network element. 

41. (previously presented) A method according to claim 35, wherein, before the 
policy administrator sends the network use digital contract to the network element, 
the policy administrator performs operations comprising: 

receiving a digital certificate of the network element; 
authenticating the digital certificate of the network element; 
receiving a digital signature of the network element; 
authenticating the digital signature of the network element; 
writing contract terms in an electronic document; 

writing the digital certificate of the network element and the digital signature 
of the network element in the electronic document; and 

writing a digital certificate of the policy administrator and a digital signature of 
the policy administrator in the electronic document. 
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42. (previously presented) A method according to claim 35, wherein the term in 
the network use digital contract to allow encrypted communications from the network 
element to be decrypted by an entity other than addressees of the encrypted 
communications comprises: 

data to indicate that the network element has agreed to allow encrypted 
communications from the network element to a second network element to be 
decrypted by an entity other than the second network element. 

43, (currently amended) A method, comprising: 

receiving, at a network monitoring element, a network monitoring digital 

contract from a policy administrator, wherein the network monitoring digital 
contract comprises a term to allow the network monitoring element to monitor encrypted 
communications from a network element managed by the policy administrator, even 
if the encrypted communications are not addressed to the network monitoring element; 

sending, from the network monitoring element to the policy administrator, a 
request to monitor the encrypted communications; 

sending the network monitoring digital contract from the network monitoring 
element to the policy administrator; and 

after sending the network monitoring digital contract to the policy administrator, 
receiving, at the network monitoring element, decrypting information from the policy 
administrator, the decrypting information to allow the network monitoring element to 
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monitor decrypted versions of the encrypted communications from the network element; 
and 

before receiving the network monitoring digital contract from the policy 
administrator, performing at least one Operation from the group consisting of: 

sending a digital certificate for the network monitoring element to the policy 
administrator; and 

sending a digital signature for the network monitoring element to the policy 
administrator. 

44. (previously presented) A method according to claim 43, wherein the 
operation of receiving decrypting information from the policy administrator comprises: 

receiving, from the policy administrator, a decryption key to allow the network 
monitoring element to decrypt the encrypted communications from the network element. 

45. (previously presented) A method according to claim 43, wherein the 
operation of receiving decrypting information from the policy administrator comprises: 

receiving, from the policy administrator, decrypted versions of the encrypted 
communications. 

46. (canceled) 

47. (currently amended) A method, comprising: 
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receiving, at a network element, a network use digital contract from a policy 
administrator, wherein the network use digital contract comprises a term to indicate that 
the network element has agreed to allow encrypted communications from the network 
element to be decrypted by an entity other than addressees of the encrypted 
communications; 

sending an encrypted communication from the network element; 

writing, into a log, information to allow the encrypted communication to be 

decrypted, wherein the information is written into the log by the network element; 

allowing the policy administrator to access the log to obtain the information to 
allow the encrypted communication to be decrypted; and 

before receiving the network use digital contract from the policy administrator, 
performing at least one operation from the group consisting of: 

sending a digital certificate for the network element to the policy administrator; 

and 

sending a digital signature for the network element to the policy administrator. 

48. (canceled) 

49. (currently amended) An article, comprising: 
a machine accessible medium; and 

instructions in the machine accessible medium, wherein the instructions, 
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when executed by a processing system, cause the processing system to provide 
a policy administrator that performs operations comprising: 

sending a network use digital contract to a network element, wherein the network 
use digital contract comprises a term to allow encrypted communications from the 
network element to be decrypted by an entity other than addressees of the encrypted 
communications; 

sending a network monitoring digital contract to a network monitoring element, 
wherein the network monitoring digital contract comprises a term to allow the network 
monitoring element to monitor communications from the network element, even if the 
encrypted communications are not addressed to the network monitoring element; 

sending decrypting information to the network monitoring element in accordance 
with the network monitoring digital contract and the network use digital contract, the 
decrypting information to allow the network monitoring element to monitor decrypted 
versions of the encrypted communications from the network element; and 

before sending the network monitoring digital contract to the network monitoring 
element, performing at least one operation from the group consisting of: 

receiving a digital certificate for the network monitoring element at the policy 
administrator; and 

receiving a digital signature for the network monitoring element at the policy 
administrator. 

50. (currently amended) An article, comprising: 
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a machine accessible medium; and 

instructions in the machine accessible medium, wherein the instructions, when 
executed by a processing system, cause the processing system to provide a network 
monitoring element that performs operations comprising: 

receiving a network monitoring digital contract from a policy administrator, 
wherein the network monitoring digital contract comprises a term to allow the network 
monitoring element to monitor communications from a network element managed by the 
policy administrator, even if the encrypted communications are not addressed to the 
network monitoring element; 

sending, to the policy administrator, a request to monitor communications from 
the network element; 

sending the network monitoring digital contract to the policy administrator; 

and 

after sending the network monitoring digital contract to the policy administrator, 
receiving decrypting information from the policy administrator, the decrypting 
information to allow the network monitoring element to monitor decrypted versions of 
encrypted communications from the network element; and 

before receiving the network monitoring digital contract from the policy 
administrator, performing at least one operation from the group consisting of: 

sending a digital certificate for the network monitoring element to the policy 
administrator; and 
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sending a digital signature for the network monitoring element to the policy 
administrator. 

51. (currently amended) An article, comprising: 
a machine accessible medium; and 

instructions in the machine accessible medium, wherein the instructions, when 
executed by a processing system, cause the processing system to provide a network 
element that performs operations comprising: receiving a network use digital contract 
from a policy administrator, wherein the network use digital contract comprises a term to 
indicate that the network element has agreed to allow encrypted communications from 
the network element to be decrypted by an entity other than addressees of the 
encrypted communications; 

sending an encrypted communication from the network element; 

writing, into a log, information to allow the encrypted communication to be 
decrypted, wherein the information is written into the log by the network element; and 

allowing the policy administrator to access the log to obtain the information to 
allow the encrypted communication to be decrypted; and 

before receiving the network us" digital contract from the policy administrator, 
performing at least one operation from the group consisting of: 

sending a digital certificate for the network element to the policy administrator, 

and 

sending a digital signature for the network element to the Policy administrator. 
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52. (currently amended) An apparatus comprising: 
a processor; 

a machine accessible medium in communication with the processor; and 

instructions in the machine accessible medium, wherein the instructions, when 
executed by the processor, enable the apparatus to operate as a policy administrator 
that performs operations comprising: 

sending a network use digital contract to a network element, wherein the 
network use digital contract comprises a term to allow encrypted communications 
from the network element to be decrypted by an entity other than addressees of the 
encrypted communications; and 

sending a network monitoring digital contract to a network monitoring element, 
wherein the network monitoring digital contract comprises a term to allow the network 
monitoring element to monitor communications from the network element, even if the 
encrypted communications are not addressed to the network monitoring element; 

sending decrypting information to the network monitoring element in accordance 
with the network monitoring digital contract and the network use digital contract, the 
decrypting information to allow the network monitoring element to monitor a decrypted 
version of an encrypted communication from the network element; and 

before sending the network monitoring digital contract to the network monitoring 
element, performing at least one operation from the group consisting of: 
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receiving a digital certificate for the network monitoring element at the policy 
administrator; and 

receiving a digital signature for the network monitoring element at the policy 
administrator. 

53. (currently amended) An apparatus comprising: 
a processor; 

a machine accessible medium in communication with the processor; and 

instructions in the machine accessible medium, wherein the instructions, when 
executed by the processor, enable the apparatus to operate as a network element that 
performs operations comprising: 

receiving a network use digital contract from a policy administrator, wherein the 
network use digital contract comprises a term to indicate that the network element has 
agreed to allow encrypted communications from the network element to be decrypted 
by an entity other than addressees of the encrypted communications; 

sending an encrypted communication from the network element; 

writing, into a log, information to allow the encrypted communication to be 
decrypted, wherein the information is written into the log by the network element; 

allowing the policy administrator to access the log to obtain the information to 
allow the encrypted communication to be decrypted; and 

before receiving the network use digital contract from the policy administrator, 
performing at least one operation from the group consisting of: 
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sending a digital certificate for the network element to the policy administrator; 

and 

sending a digital signature for the network element to the policy administrator. 

Allowable Subject Matter 

Claims 35-45, 47, and 49-53 are allowed. 

Any inquiry concerning this communication or earlier communications from the 
examiner should be directed to Arezoo Sherkat whose telephone number is (571 ) 272- 
3796. The examiner can normally be reached on 8:00-4:30 Monday-Friday. 

If attempts to reach the examiner by telephone are unsuccessful, the examiner's 
supervisor, Ayaz Sheikh can be reached on (571) 272-3795. The fax phone number for 
the organization where this application or proceeding is assigned is 703-872-9306. 

Information regarding the status of an application may be obtained from the 
Patent Application Information Retrieval (PAIR) system. Status information for 
published applications may be obtained from either Private PAIR or Public PAIR. 
Status information for unpublished applications is available through Private PAIR only. 
For more information about the PAIR system, see http://pair-direct.uspto.gov. Should 
you have questions on access to the Private PAIR system, contact the Electronic 
Business Center (EBC) at 866-217-9197 (toll-free). 

Arezoo Sherkat 
Patent Examiner 
Group 2131 
April 12, 2005 
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